StackRadar

CVE-2023-34455

High

Advisory

Published 15 Jun 2023In the index since 5 Sept 2026
Severity
High
worst across findings
CVSS
7.5
base score, highest
EPSS
0.018
77th percentile
CISA KEV
Not listed
no confirmed exploitation
Charts affected
140
of 17,781 indexed, latest versions
Container images
138
deployed by those charts
Fix available
1 of 1
affected package

snappy-java's unchecked chunk length leads to DoS

Carried by container images the latest versions of 140 of 17,781 indexed charts deploy, on 138 images.

Affected packageAffected versionsFixed inImages
snappy-javamaven1.0.3, 1.0.4.1, 1.0.5, 1.0.5.2+10 more1.1.10.1138
OSV records
GHSA-qcwq-55hx-v3vh

Charts affected

140 by stars
ChartLatestAffected imagesRadar Score
fspiop-transfer-api-svcmojaloop12.0.11 of 3See more

fspiop-transfer-api-svc mojaloop 12.0.1

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

11,479
mojaloopmojaloop14.0.01 of 6See more

mojaloop mojaloop 14.0.0

1 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
solsson/kafka:latest41e5d8f6f290
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

19,226
chirpstackmosquitto-helm-chart0.5.01 of 8See more

chirpstack mosquitto-helm-chart 0.5.0

1 of the 8 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.9.0d056c89b7131
snappy-java@1.1.7
1.1.10.1

Open the chart page →

25,933
pulsarmosquitto-helm-chart0.2.01 of 1See more

pulsar mosquitto-helm-chart 0.2.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apachepulsar/pulsar:2.10.03b262ab7a7d9
snappy-java@1.1.7
1.1.10.1

Open the chart page →

15,675
Practica_4_helmmy-heml-appVerified publisher0.1.01 of 7See more

Practica_4_helm my-heml-app 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
adagber/planner:v1.0e5c1ed097752
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,721
kafka-helm-chartnotesprojectchart0.1.01 of 1See more

kafka-helm-chart notesprojectchart 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
wurstmeister/kafka:latest2d4bbf9cc83d
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

4,547
logic-ms-helm-chartnotesprojectchart0.1.01 of 2See more

logic-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/logic-ms:latestdf8bf38c535b
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

6,852
registration-ms-helm-chartnotesprojectchart0.1.01 of 2See more

registration-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/registration-ms-final:latest427af418b75e
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

5,916
user-data-ms-helm-chartnotesprojectchart0.1.01 of 2See more

user-data-ms-helm-chart notesprojectchart 0.1.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

5,873
hive-metastoreolehrgfVerified publisher0.1.01 of 1See more

hive-metastore olehrgf 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
snappy-java@1.1.8.2
1.1.10.1

Open the chart page →

8,540
apicurioone-acre-fundVerified publisher2.3.02 of 5See more

apicurio one-acre-fund 2.3.0

2 of the 5 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apicurio/apicurio-studio-api:0.2.62.Final302d202ed149
snappy-java@1.1.8.4
1.1.10.1
apicurio/apicurio-studio-ws:0.2.62.Final27a91978a388
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

18,667
omec-control-planeopencord0.1.312 of 8See more

omec-control-plane opencord 0.1.31

2 of the 8 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/cassandra:2.1.20cb079c0d7a57
snappy-java@1.0.5.2
1.1.10.1
omecproject/c3po-hssdb:master-latest28a90cc26716
snappy-java@1.0.5.2
1.1.10.1

Open the chart page →

40,715
ves-agentopencord1.0.21 of 1See more

ves-agent opencord 1.0.2

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
opencord/ves-agent:1.0.04187e2a8c918
snappy-java@1.1.7.1
1.1.10.1

Open the chart page →

6,350
bpjstk-serviceopenshift1.0.01 of 6See more

bpjstk-service openshift 1.0.0

1 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
andrianrf/backoffice-be:latest6036614803d4
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

34,671
smsf-configurationopenshift1.0.41 of 1See more

smsf-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-configuration:1.0.49abb3882bcbd
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,607
smsf-dispatcheropenshift1.0.41 of 1See more

smsf-dispatcher openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-dispatcher:1.0.46537e8ed8de8
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

11,738
smsf-momtopenshift1.0.41 of 1See more

smsf-momt openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-momt:1.0.4ce23b20a8a17
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,568
smsf-registrationopenshift1.0.41 of 1See more

smsf-registration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/smsf-registration:1.0.4b22e746edd5d
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,551
ussigw-configurationopenshift1.0.41 of 1See more

ussigw-configuration openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/ussigw-configuration:1.0.4bf18525c5ad9
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,455
ussigw-coreopenshift1.0.41 of 1See more

ussigw-core openshift 1.0.4

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
gurolakman/ussigw-core:1.0.48739565c3ea2
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

13,100
p4p40.1.01 of 7See more

p4 p4 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
mastercloudapps/planner:v1.2340a950b311b2
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,537
Practica_4_helmpr04helm0.1.01 of 7See more

Practica_4_helm pr04helm 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
pcarrascoponce/planner:v1.0981fc482442c
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

27,558
hive-metastorepresto-loadbalancer0.2.31 of 1See more

hive-metastore presto-loadbalancer 0.2.3

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
datappeal/hive-metastore:lateste38c085a3567
snappy-java@1.0.5
1.1.10.1

Open the chart page →

9,606
rada-platformrada-platform0.1.01 of 7See more

rada-platform rada-platform 0.1.0

1 of the 7 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
trinodb/trino:45038c6f24ab1a4
snappy-java@1.0.5
1.1.10.1

Open the chart page →

21,211
kafkasb-helm-charts0.3.01 of 2See more

kafka sb-helm-charts 0.3.0

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
provectuslabs/kafka-ui:latest8f2ff02d64b0
snappy-java@1.1.10.0
1.1.10.1

Open the chart page →

1,597
seataseataVerified publisher0.1.01 of 1See more

seata seata 0.1.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
seataio/seata-server:latest703b5de7f1a6
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

4,245
shenyushenyu0.6.31 of 2See more

shenyu shenyu 0.6.3

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/shenyu-bootstrap:2.5.11bd5756f6273
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

8,804
zookeepersignoz0.0.11 of 1See more

zookeeper signoz 0.0.1

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
signoz/zookeeper:3.7.1fcc4a3288154
snappy-java@1.1.7.7
1.1.10.1

Open the chart page →

2,917
archivaslamdev0.0.71 of 2See more

archiva slamdev 0.0.7

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
xetusoss/archiva:v2.2.588f25242b9ee
snappy-java@1.0.5
1.1.10.1

Open the chart page →

6,907
atlassian-jirasomeblackmagic3.3.21 of 1See more

atlassian-jira someblackmagic 3.3.2

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
atlassian/jira-software:8.14.037bc46cbec1a
snappy-java@1.1.7.1
1.1.10.1

Open the chart page →

13,079
unifistartechnicaVerified publisher0.1.31 of 2See more

unifi startechnica 0.1.3

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
jacobalberty/unifi:v7.1.664a3616625dda
snappy-java@1.1.7.5
1.1.10.1

Open the chart page →

14,493
fdi-dotstatsuite-sfs-solrstatcan1.0.21 of 4See more

fdi-dotstatsuite-sfs-solr statcan 1.0.2

1 of the 4 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
snappy-java@1.1.7.6
1.1.10.1

Open the chart page →

6,065
solrstatcan1.5.101 of 3See more

solr statcan 1.5.10

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/solr:8.11.18c5f7881cebb
snappy-java@1.1.7.6
1.1.10.1

Open the chart page →

8,806
trinostatcan1.23.41 of 2See more

trino statcan 1.23.4

1 of the 2 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
trinodb/trino:405ee80ab5eeab2
snappy-java@1.0.5
1.1.10.1

Open the chart page →

13,767
static-src-people-detector-appstatic-src-people-detector-chartVerified publisher1.5.54 of 6See more

static-src-people-detector-app static-src-people-detector-chart 1.5.5

4 of the 6 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
fimperato/detected-info-notification:1.2.6-RELEASE6441f6545613
snappy-java@1.1.8.4
1.1.10.1
fimperato/detected-info-store:1.1.0-RELEASEe32920eedd3a
snappy-java@1.1.8.4
1.1.10.1
fimperato/static-src-info-data-transformation:1.0.5-RELEASEdf05c388ea6c
snappy-java@1.1.8.4
1.1.10.1
fimperato/static-src-people-detection:1.1.5-RELEASEc0cfaca070d9
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

13,646
hadoop-deploymenttejaswita-hadoop-helmchart1.0.01 of 1See more

hadoop-deployment tejaswita-hadoop-helmchart 1.0.0

1 of the 1 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/hadoop:3af361b20bec0
snappy-java@1.1.8.2
1.1.10.1

Open the chart page →

4,240
clickhousetemp-charts0.7.11 of 3See more

clickhouse temp-charts 0.7.1

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
library/zookeeper:3.6.180ad2170ad62
snappy-java@1.1.7
1.1.10.1

Open the chart page →

8,707
thingsboardthingsboardVerified publisher0.1.34 of 12See more

thingsboard thingsboard 0.1.3

4 of the 12 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
snappy-java@1.1.8.4
1.1.10.1
thingsboard/tb-node:3.4.1645f43b688f7
snappy-java@1.1.8.4
1.1.10.1

Open the chart page →

25,394
hermestoukVerified publisher0.6.01 of 3See more

hermes touk 0.6.0

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apicurio/apicurio-registry-kafkasql:2.1.0.Finala97d67487532
snappy-java@1.1.7.7
1.1.10.1

Open the chart page →

12,455
drillwearefrank1.3.61 of 3See more

drill wearefrank 1.3.6

1 of the 3 container images this version deploys carry CVE-2023-34455.

Container imageDigestPackageFixed in
apache/drill:1.21.11f96558fd292
snappy-java@1.1.8.1
1.1.10.1

Open the chart page →

9,397

Container images carrying it

138 by charts deploying them

A fixed version is listed for 1 of the 1 affected package.

Container imageDigestPackageFixed inUsed by
linuxserver/unifi-controller:8.0.240ae315a3a456
snappy-java@1.1.8.4
1.1.10.1
1
linuxserver/unifi-controller:7.3.83ab105cc50322
snappy-java@1.1.8.4
1.1.10.1
1
lourdesmorente/new-planner:1.0.0608745878cdb
snappy-java@1.1.8.1
1.1.10.1
1
lsmaster/kafka-connect-wrapper:6.1.0-0.1061eb5fbfa00
snappy-java@1.1.7.7
1.1.10.1
1
magento/magento-cloud-docker-opensearch:2.5-1.4.059fb6f0f1461
snappy-java@1.1.8.2
1.1.10.1
1
molynx/planner:v1441c9f52f092
snappy-java@1.1.8.1
1.1.10.1
1
omecproject/c3po-hssdb:master-latest28a90cc26716
snappy-java@1.0.5.2
1.1.10.1
1
opencord/ves-agent:1.0.04187e2a8c918
snappy-java@1.1.7.1
1.1.10.1
1
opensearchproject/logstash-oss-with-opensearch-output-plugin:8.9.043b0cdaf26ed
snappy-java@1.1.0.1
1.1.10.1
1
pcarrascoponce/planner:v1.0981fc482442c
snappy-java@1.1.8.1
1.1.10.1
1
radarbase/kafka-manager:1.3.3.181d2af7dd5a4e
snappy-java@1.1.7.1
1.1.10.1
1
radondb/zookeeper:3.6.216981604f1a0
snappy-java@1.1.7
1.1.10.1
1
scorpiobroker/scorpio:scorpio-aaio_2.1.0db55012043df
snappy-java@1.1.8.1
1.1.10.1
1
seataio/seata-server:latest703b5de7f1a6
snappy-java@1.1.8.4
1.1.10.1
1
slamdev/apache-hive:2.3.9-2.10.1b4b029c9b15f
snappy-java@1.0.5
1.1.10.1
1
sslhep/hive-metastore:3.1.39e80af083079
snappy-java@1.0.5
1.1.10.1
1
thingsboard/tb-coap-transport:3.4.1bd45a09d85d9
snappy-java@1.1.8.4
1.1.10.1
1
thingsboard/tb-http-transport:3.4.1a06f53c5e2da
snappy-java@1.1.8.4
1.1.10.1
1
thingsboard/tb-mqtt-transport:3.4.1030f316ce301
snappy-java@1.1.8.4
1.1.10.1
1
thingsboard/tb-node:3.4.1645f43b688f7
snappy-java@1.1.8.4
1.1.10.1
1
thingsboard/tb-node:3.6.0f40a542832c4
snappy-java@1.1.8.4
1.1.10.1
1
trinodb/trino:45038c6f24ab1a4
snappy-java@1.0.5
1.1.10.1
1
trinodb/trino:405ee80ab5eeab2
snappy-java@1.0.5
1.1.10.1
1
vitalii1992/analytics-service:latest8e798836ecea
snappy-java@1.1.8.4
1.1.10.1
1
vitalii1992/quotes-provider-service:latest44d2d6e00ab3
snappy-java@1.1.8.4
1.1.10.1
1
vlebediantsev/logic-ms:latestdf8bf38c535b
snappy-java@1.1.8.4
1.1.10.1
1
vlebediantsev/registration-ms-final:latest427af418b75e
snappy-java@1.1.8.4
1.1.10.1
1
vlebediantsev/user-data-ms-final-final:latest9319437f3c8f
snappy-java@1.1.8.4
1.1.10.1
1
wistefan/mvf:lateste0887302b2d8
snappy-java@1.1.8.4
1.1.10.1
1
xeotek/kadeck:4.2.94c6b04d9ce55
snappy-java@1.1.8.4
1.1.10.1
1
xetusoss/archiva:v2.2.588f25242b9ee
snappy-java@1.0.5
1.1.10.1
1
ghcr.io/curium-rocks/mitre-siphon:main503c00321502
snappy-java@1.1.8.4
1.1.10.1
1
ghcr.io/fleeksoft/hbase/hbase-base:2.4.13.2c144bdd688d7
snappy-java@1.0.5
1.1.10.1
1
ghcr.io/fleeksoft/hbase/hdfs:3.3.3.2ac62269785ac
snappy-java@1.1.8.2
1.1.10.1
1
ghcr.io/melodyyangaws/hive-metastore:3.0.0e949b0f733f0
snappy-java@1.1.8.2
1.1.10.1
1
ghcr.io/star-whale/server:0.6.158368359c8dd0
snappy-java@1.1.8.4
1.1.10.1
1
public.ecr.aws/v0r6c2e2/hive-metastore:latest794b3bff9510
snappy-java@1.1.8.2
1.1.10.1
1
quay.io/fiware/waltid:1.14.1-SNAPSHOT93889c3d8a34
snappy-java@1.1.8.4
1.1.10.1
1

syft 1.42.1 · advisories as of 14 Sept 2026

Corrections: contact@stackradar.io

Catalogue: Artifact Hub · Advisories: OSV · Exploitation: FIRST EPSS, CISA KEV.